Harvey

Harvey

Posted via Ashby

Staff Security Software Engineer, IAM

Posted Sep 3, 2026

Role at a glance

Job function
Software Engineering & IT Software Engineering
Salary
$231K – $340K/yr
Location
San Francisco, United States
Work arrangement
Remote
Employment
Full-time
Experience
10+ years experience building and operating production software

Spotted an issue?

We’ll check it against the original posting.

Log in to report

Role Summary

AI-generated

As a Staff Software Engineer on Harvey’s Security Engineering team, you will be a founding team member responsible for the technical strategy and implementation of identity and access for customers, employees, contractors, and non-human identities. The role operates across security, infrastructure, and product engineering to build durable identity platforms, support AI-agent authentication and authorization, and enable secure user experiences.

What You'll Do

  • Define Harvey's multi-year technical strategy for identity, authentication, authorization, and privileged access.
  • Design and build complex identity systems from greenfield, including writing code, instrumenting systems, and owning them in production.
  • Lead the architecture and execution of cross-functional initiatives for identity, permissions, authorization, entitlement modeling, and...
  • Extend the identity model to non-human and agentic identities so AI agents are authenticated, scoped, and auditable.
  • Serve as the technical authority for identity and access architecture and guide design reviews, investment decisions, and long-term...

Generated from the employer's posting. Verify important details before applying.

View full posting

Qualifications

10+ years building and operating production software; expertise in identity and access engineering; experience designing identity or authorization platforms; experience with foundational systems, cloud infrastructure, and modern distributed-system patterns; strong communication skills.

Required

  • 10+ years experience building and operating production software, with demonstrated impact across multiple teams or technical domains.
  • Deep expertise in several identity and access engineering domains — authentication, federation, authorization, entitlement modeling, or...
  • Fluency with AI and AI-assisted development tools.
  • Experience designing identity or authorization platforms, libraries, or abstractions used by other engineering teams.
  • Experience delivering foundational systems that achieve meaningful adoption and improve organizational or customer outcomes.
  • Experience with cloud infrastructure, such as Azure, Google Cloud Platform, or Amazon Web Services, and modern distributed-system patterns.
  • Strong communication skills and the ability to create alignment across technical and non-technical stakeholders.

Preferred

  • Experience with System for Cross-domain Identity Management (SCIM), OpenID Connect (OIDC), Security Assertion Markup Language (SAML),...
  • Experience with identity governance and administration (IGA) or privileged access management (PAM) platforms, and with automating...
  • Experience building identity platforms or programs at a hyper-growth startup.
  • Experience with regulated environments such as FedRAMP, including phishing-resistant authentication and authenticator assurance...

Original job description

Content provided by the employer

Why Harvey

At Harvey, we’re transforming how legal and professional services operate. By combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise, we’re reshaping how critical knowledge work gets done for decades to come.

This is a rare chance to help build a generational company at a true inflection point. We have strong product-market fit and world-class investor support. We’re scaling fast and defining a new category in real time. The work is ambitious, the bar is high, and the opportunity for growth — personal, professional, and financial — is unmatched.

Our team moves fast, takes ownership, and is deeply committed to the mission — operating with intensity, staying close to our customers, and pushing each other for excellence. We live by three values: Decisiveness, Simplicity, and Job's Not Finished. We act quickly on clear judgment over perfect information, we believe simplicity is what scales, and we're never satisfied with where we are. If you want to do the best work of your career alongside people who share that drive, we'd love to build with you.

At Harvey, the future of professional services is being written today — and we’re just getting started.

Role Overview

As a Staff Software Engineer on the Security Engineering team, you will be a founding member of the team and define and drive the technical strategy for identity and access at Harvey — both how customers authenticate to Harvey, as well as how internal employees, contractors, and non-human identities access company systems, what they are authorized to do, and how seamlessly access adapts as needs change.

Challenges ahead include exploring how AI-powered access management can understand employee needs, recommend appropriate permissions, streamline decisions, and adapt access as roles and responsibilities evolve, as well as shaping an end user/agent authentication experience that makes signing in to Harvey fast, consistent, reliable, and secure across every surface where our customers work.

You will operate at the boundary of security, infrastructure, and product engineering — turning ambitious business and technical requirements into durable identity platforms, clear architectural direction, and exceptional user experiences. This role is hands-on, but its primary leverage comes through technical direction, platform adoption, cross-functional alignment, and enabling other engineers to build on strong identity foundations.

What you'll do

  • Define Harvey's multi-year technical strategy for identity, authentication, authorization, and privileged access.

  • Design and build complex identity systems from greenfield — writing the code, instrumenting it, and owning it in production.

  • Lead the architecture and execution of cross-functional initiatives to right-size access at scale, spanning identity and authentication, permissions and authorization, entitlement modeling, and access controls.

  • Extend the identity model to non-human and agentic identities, so that AI agents acting on behalf of users are authenticated, scoped, and auditable.

  • Serve as the technical authority for identity and access architecture and guide major design reviews, investment decisions, and long-term roadmaps.

What You Have

  • 10+ years experience building and operating production software, with demonstrated impact across multiple teams or technical domains.

  • Deep expertise in several identity and access engineering domains — authentication, federation, authorization, entitlement modeling, or privileged access.

  • Fluency with AI: you use AI-assisted development tools effectively while applying strong engineering judgment, and you design agentic workflows that automate repetitive toil and improve how teams operate.

  • Experience designing identity or authorization platforms, libraries, or abstractions used by other engineering teams.

  • Experience delivering foundational systems that achieve meaningful adoption and improve organizational or customer outcomes.

  • Experience with cloud infrastructure, such as Azure, Google Cloud Platform, or Amazon Web Services, and modern distributed-system patterns.

  • Strong communication skills and the ability to create alignment across technical and non-technical stakeholders.

Nice to have

  • Experience with System for Cross-domain Identity Management (SCIM), OpenID Connect (OIDC), Security Assertion Markup Language (SAML), policy engines such as Open Policy Agent (OPA) or Cedar, Zanzibar-style authorization systems, or hardware-backed credentials.

  • Experience with identity governance and administration (IGA) or privileged access management (PAM) platforms, and with automating joiner, mover, and leaver workflows.

  • Experience building identity platforms or programs at a hyper-growth startup.

  • Experience with regulated environments such as FedRAMP, including phishing-resistant authentication and authenticator assurance requirements.

Compensation

$231,000 - $340,000 USD

 

Depending on your location, an Applicant Privacy Notice may apply to you. You can find all of our Applicant Privacy Notices [here].

#LI-NP1

Harvey is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing [email protected]

Harvey

About the company

Harvey

Startup

Harvey is an innovative technology company focused on streamlining the recruitment process through cutting-edge artificial intelligence solutions. By leveraging data-driven insights, Harvey enhances the connection between employers and job seekers, making it easier for companies to find the right talent efficiently. With a commitment to improving the hiring experience for both candidates and organizations, Harvey is at the forefront of transforming traditional recruitment methods into a more effective, user-friendly approach.